From owner-freebsd-security@FreeBSD.ORG Thu Aug 19 14:53:56 2004 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 7494816A4CE for ; Thu, 19 Aug 2004 14:53:56 +0000 (GMT) Received: from critter.freebsd.dk (critter.freebsd.dk [212.242.86.163]) by mx1.FreeBSD.org (Postfix) with ESMTP id D229E43D41 for ; Thu, 19 Aug 2004 14:53:55 +0000 (GMT) (envelope-from phk@critter.freebsd.dk) Received: from critter.freebsd.dk (localhost [127.0.0.1]) by critter.freebsd.dk (8.13.1/8.13.1) with ESMTP id i7JErrnt019975; Thu, 19 Aug 2004 16:53:53 +0200 (CEST) (envelope-from phk@critter.freebsd.dk) To: Tig From: "Poul-Henning Kamp" In-Reply-To: Your message of "Fri, 20 Aug 2004 00:48:43 +1000." <20040820004843.011b8de8@piglet.goo> Date: Thu, 19 Aug 2004 16:53:53 +0200 Message-ID: <19974.1092927233@critter.freebsd.dk> Sender: phk@critter.freebsd.dk cc: freebsd-security@freebsd.org Subject: Re: Report of collision-generation with MD5 X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Security issues [members-only posting] List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 19 Aug 2004 14:53:56 -0000 In message <20040820004843.011b8de8@piglet.goo>, Tig writes: >On Wed, 18 Aug 2004 14:29:57 -0400 >"Peter C. Lai" wrote: > >> On Wed, Aug 18, 2004 at 09:08:12PM +0300, Claudiu wrote: >> > hello, >> > >> > please explain what do you mean by "reverse the hash". Is this the >> > recreation of the originial message from its hash ? >> >> The short answer is yes. The slightly longer answer is that such is >> only one specific case. The general case is that the digest should not >> reveal any information about the original message. >> > > >If this is the case, then it would be very cool! > >Imagine sending 32 bytes, then 'reverse the hash' to get XX MB's worth >of data :] > >That would be great compression! That would not be compression (and hopefully you know it). -- Poul-Henning Kamp | UNIX since Zilog Zeus 3.20 phk@FreeBSD.ORG | TCP/IP since RFC 956 FreeBSD committer | BSD since 4.3-tahoe Never attribute to malice what can adequately be explained by incompetence.